10
CVSSv2

CVE-2006-7036

Published: 23/02/2007 Updated: 16/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

PHP remote file inclusion vulnerability in register.php for Andys Chat 4.5 allows remote malicious users to execute arbitrary code via the action parameter. NOTE: this issue was announced by an unreliable researcher, but the vendor is no longer distributing the product, so the original claims can not be evaluated.

Vulnerable Product Search on Vulmon Subscribe to Product

andys chat andys chat 4.5